Insufficient file permissions leak administrator-privileged credentials in AXIS License Verifier ACAP
CVE-2023-21409
8.4HIGH
What is CVE-2023-21409?
A vulnerability exists in Axis Communications products due to insufficient file permissions, which allows unprivileged users to access unencrypted administrator credentials. This can potentially lead to unauthorized modifications in the application configuration, putting sensitive information at risk. Immediate action is recommended to secure affected systems against unauthorized access.
Affected Version(s)
AXIS License Plate Verifier 2.8.3 or earlier